October 10, 2013, 4:02:51 pm TOTAL IMPACT: 18 in file: /index.php


Total impact: 18
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: s | Value: <script>\'1
Impact: 18 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: finds html breaking injections including whitespace attacks | Tags: xss, csrf | ID: 1
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

October 10, 2013, 4:05:38 pm TOTAL IMPACT: 18 in file: /index.php


Total impact: 18
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: s | Value: <script>\'1
Impact: 18 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: finds html breaking injections including whitespace attacks | Tags: xss, csrf | ID: 1
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

October 10, 2013, 4:06:56 pm TOTAL IMPACT: 18 in file: /index.php


Total impact: 18
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: s | Value: <script>\'5
Impact: 18 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: finds html breaking injections including whitespace attacks | Tags: xss, csrf | ID: 1
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

October 10, 2013, 4:09:22 pm TOTAL IMPACT: 40 in file: /index.php


Total impact: 40
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: REQUEST.s | Value: <script>\\\'1
Impact: 20 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 1/2 | Tags: sqli, id, lfi | ID: 42
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

Variable: GET.s | Value: <script>\\\'1
Impact: 20 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 1/2 | Tags: sqli, id, lfi | ID: 42
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

October 10, 2013, 4:10:24 pm TOTAL IMPACT: 20 in file: /index.php


Total impact: 20
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: GET.s | Value: <script>\\\'1
Impact: 20 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 1/2 | Tags: sqli, id, lfi | ID: 42
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

October 10, 2013, 4:10:53 pm TOTAL IMPACT: 20 in file: /index.php


Total impact: 20
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: GET.s | Value: <script>\\\'1
Impact: 20 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 1/2 | Tags: sqli, id, lfi | ID: 42
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

October 10, 2013, 4:11:09 pm TOTAL IMPACT: 20 in file: /index.php


Total impact: 20
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: GET.s | Value: <script>\\\'1
Impact: 20 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 1/2 | Tags: sqli, id, lfi | ID: 42
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

Oct 10, 2013 19:13 TOTAL IMPACT: 20 in file: /index.php


Total impact: 20
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: GET.s | Value: <script>\\\'6
Impact: 20 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 1/2 | Tags: sqli, id, lfi | ID: 42
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

Oct 10, 2013 19:15 TOTAL IMPACT: 14 in file: /index.php


Total impact: 14
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: GET.s | Value: <script>\\\'12
Impact: 14 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

Oct 10, 2013 19:24 TOTAL IMPACT: 3 in file: /index.php


Total impact: 3
Affected tags: xss, csrf, id

Variable: GET.s | Value: --1\'
Impact: 3 | Tags: xss, csrf, id
Description: Detects common comment types | Tags: xss, csrf, id | ID: 35

Oct 10, 2013 19:24 TOTAL IMPACT: 3 in file: /index.php


Total impact: 3
Affected tags: xss, csrf, id

Variable: GET.s | Value: --1\'
Impact: 3 | Tags: xss, csrf, id
Description: Detects common comment types | Tags: xss, csrf, id | ID: 35

Oct 13, 2013 22:06 TOTAL IMPACT: 4 in file: /index.php


Total impact: 4
Affected tags: xss, csrf, id, rfe

Variable: POST.namee | Value: Name (required)
Impact: 4 | Tags: xss, csrf, id, rfe
Description: Detects JavaScript object properties and methods | Tags: xss, csrf, id, rfe | ID: 17

Oct 13, 2013 22:06 TOTAL IMPACT: 4 in file: /index.php


Total impact: 4
Affected tags: xss, csrf, id, rfe

Variable: POST.namee | Value: Name (required)
Impact: 4 | Tags: xss, csrf, id, rfe
Description: Detects JavaScript object properties and methods | Tags: xss, csrf, id, rfe | ID: 17

Oct 14, 2013 19:38 TOTAL IMPACT: 20 in file: /index.php


Total impact: 20
Affected tags: xss, csrf, id, rfe, lfi, sqli

Variable: GET.s | Value: <script>\\\'1
Impact: 20 | Tags: xss, csrf, id, rfe, lfi, sqli
Description: Detects obfuscated script tags and XML wrapped HTML | Tags: xss | ID: 33
Description: Detects possibly malicious html elements including some attributes | Tags: xss, csrf, id, rfe, lfi | ID: 38
Description: Detects classic SQL injection probings 1/2 | Tags: sqli, id, lfi | ID: 42
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43

Oct 14, 2013 19:47 TOTAL IMPACT: 10 in file: /index.php


Total impact: 10
Affected tags: xss, csrf, id, sqli, lfi

Variable: GET.s | Value: \'1--
Impact: 10 | Tags: xss, csrf, id, sqli, lfi
Description: Detects common comment types | Tags: xss, csrf, id | ID: 35
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46

Oct 14, 2013 19:54 TOTAL IMPACT: 10 in file: /index.php


Total impact: 10
Affected tags: xss, csrf, id, sqli, lfi

Variable: GET.s | Value: \'1--
Impact: 10 | Tags: xss, csrf, id, sqli, lfi
Description: Detects common comment types | Tags: xss, csrf, id | ID: 35
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46

Oct 15, 2013 14:17 TOTAL IMPACT: 10 in file: /index.php


Total impact: 10
Affected tags: xss, csrf, id, sqli, lfi

Variable: GET.s | Value: \'1--
Impact: 10 | Tags: xss, csrf, id, sqli, lfi
Description: Detects common comment types | Tags: xss, csrf, id | ID: 35
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46

Oct 15, 2013 15:09 TOTAL IMPACT: 10 in file: /index.php


Total impact: 10
Affected tags: xss, csrf, id, sqli, lfi

Variable: GET.s | Value: \'1--
Impact: 10 | Tags: xss, csrf, id, sqli, lfi
Description: Detects common comment types | Tags: xss, csrf, id | ID: 35
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46

Oct 15, 2013 15:10 TOTAL IMPACT: 10 in file: /index.php


Total impact: 10
Affected tags: xss, csrf, id, sqli, lfi

Variable: GET.s | Value: \'1--
Impact: 10 | Tags: xss, csrf, id, sqli, lfi
Description: Detects common comment types | Tags: xss, csrf, id | ID: 35
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46

Oct 17, 2013 13:20 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:22 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:25 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:25 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:25 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales 1\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:26 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales \",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:26 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales Web\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:26 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales We\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:26 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales Website\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:26 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:26 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:26 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:27 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:27 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:27 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:33 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:33 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:34 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:37 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:38 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:39 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:39 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:44 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:49 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:56 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 13:59 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Oct 17, 2013 14:13 TOTAL IMPACT: 35 in file: /index.php


Total impact: 35
Affected tags: xss, csrf, id, rfe, sqli, lfi

Variable: POST.customized | Value: {\"blogname\":\"Legendary Tales\",\"blogdescription\":\"Hand-picked games\",\"header_textcolor\":false,\"background_color\":\"#878787\",\"header_image\":false,\"header_image_data\":\"\",\"background_image\":\"http://www.wordpress36.mwa/wp-content/uploads/2013/08/2012-12-24_00003.jpg\",\"background_image_thumb\":\"\",\"background_repeat\":\"repeat-y\",\"background_position_x\":\"center\",\"background_attachment\":\"fixed\",\"nav_menu_locations[primary]\":191,\"show_on_front\":\"posts\",\"page_on_front\":\"0\",\"page_for_posts\":\"0\",\"liketheme_options[testimonial_text]\":\"\",\"liketheme_options[callus_text]\":\"Call us anytime: (012) 345.6789.1234\",\"liketheme_options[url_facebook]\":\"\",\"liketheme_options[url_twitter]\":\"\",\"liketheme_options[url_vimeo]\":\"\",\"liketheme_options[url_linkedin]\":\"\",\"liketheme_options[url_pinterest]\":\"\",\"liketheme_options[url_dribbble]\":\"\",\"liketheme_options[url_rss]\":\"/feed/\"}
Impact: 35 | Tags: xss, csrf, id, rfe, sqli, lfi
Description: Detects JavaScript language constructs | Tags: xss, csrf, id, rfe | ID: 20
Description: Detects MySQL comments, conditions and ch(a)r injections | Tags: sqli, id, lfi | ID: 40
Description: Detects classic SQL injection probings 2/2 | Tags: sqli, id, lfi | ID: 43
Description: Detects basic SQL authentication bypass attempts 2/3 | Tags: sqli, id, lfi | ID: 45
Description: Detects basic SQL authentication bypass attempts 3/3 | Tags: sqli, id, lfi | ID: 46
Description: Detects MySQL comment-/space-obfuscated injections and backtick termination | Tags: sqli, id | ID: 57

Nov 13, 2013 20:07 TOTAL IMPACT: 7 in file: /wp-login.php


Total impact: 7
Affected tags: sqli, id, lfi

Variable: POST.pwd | Value: admin\'
Impact: 7 | Tags: sqli, id, lfi
Description: Detects basic SQL authentication bypass attempts 1/3 | Tags: sqli, id, lfi | ID: 44

Nov 19, 2013 16:21 TOTAL IMPACT: 7 in file: /wp-login.php


Total impact: 7
Affected tags: sqli, id, lfi

Variable: POST.pwd | Value: admin\'
Impact: 7 | Tags: sqli, id, lfi
Description: Detects basic SQL authentication bypass attempts 1/3 | Tags: sqli, id, lfi | ID: 44